Palo Alto Networks Expedition Wildcard Expansion Vulnerability Allowing File Enumeration

Vulnerability

A wildcard expansion vulnerability exists in Palo Alto Networks Expedition, prior to version 1.2.101. This vulnerability allows an unauthenticated attacker to enumerate files on the host filesystem. Expedition is a tool designed to facilitate migration to the Palo Alto Networks NGFW platform from other firewall vendors, but it has reached its End of Life and is no longer supported.

Impact

Exploitation of this vulnerability could lead to unauthorized file enumeration on the host filesystem, potentially exposing sensitive information.

Remediation

Users should update to Palo Alto Networks Expedition version 1.2.101 or later. However, since Expedition has reached its End of Life and is no longer supported, users are advised to discontinue use of the tool and consider the suggested alternatives listed in the Expedition End of Life Announcement.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.3
impact
0.6
exploitability
7.0
remediation
8.3
relevance
0.0
threat
0.0
urgency
1.4
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.